Audit .env files for committed secrets, placeholder values, empty vars, and .gitignore misses — zero dependencies, runs offline.
-
Updated
Jun 20, 2026 - JavaScript
Audit .env files for committed secrets, placeholder values, empty vars, and .gitignore misses — zero dependencies, runs offline.
�� A comprehensive environment variable scanner and auditor for modern applications. Scans JavaScript/TypeScript, .env files, Docker Compose, GitHub Actions, and shell scripts to detect and analyze environment variable usage with framework-aware context and security insights.
Add a description, image, and links to the env-audit topic page so that developers can more easily learn about it.
To associate your repository with the env-audit topic, visit your repo's landing page and select "manage topics."